The problem is not the DNS but the fact that it continues to see connections without authentication, and from this connections send spam.

Sent mail without authentication? Could you please post full log of this smtp session to help troubleshoot?

]]>Fri, 25 Oct 2013 01:56:41 +0000http://www.iredmail.org/forum/post25232.html#p25232http://www.iredmail.org/forum/post25214.html#p25214
However it seems that these connections are not legal, the ip actually does not have a reverse DNS configured:

The problem is not the DNS but the fact that it continues to see connections without authentication, and from this connections send spam.

]]>Thu, 24 Oct 2013 14:37:24 +0000http://www.iredmail.org/forum/post25214.html#p25214http://www.iredmail.org/forum/post25208.html#p25208
Postfix is running under chroot, seems it cannot resolve hostname under chroot. So "connect from unknown[xx.xx.xx.xx]" is normal.]]>Thu, 24 Oct 2013 13:47:31 +0000http://www.iredmail.org/forum/post25208.html#p25208http://www.iredmail.org/forum/post25207.html#p25207
Hello,181.66.167.61 is not in whitelist, the problem is that i have much connections of this type:

connect from unknown[190.90.189.50]connect from unknown[27.110.244.181]connect from unknown[5.52.72.25]

I'm sorry that i made mistake about zen.spamhaus.org, it cannot detect this kind of spam if its IP address is not listed in spamhaus.org. You can remove zen.spamhaus.org related stuff in Postfix main.cf.

I have the same question, why Amavid was not invoked for spam scanning and DKIM/SPF checking. Could you please show me Amavisd config file (/etc/amavisd/amavisd.conf), and SpamAssassin config file (/etc/mail/spamassassin/local.cf)? Replace passwords in those files before pasting here.